Koobface.GX

It spreads and affects other computers.
It uses stealth techniques to avoid being detected by the user.
It spreads
, through instant messaging.

Affected platforms:

Windows 2003/XP/2000/NT/ME/98/95

First detected on:

Dec. 16, 2009

Detection updated on:

Dec. 17, 2009

Statistics

No

Brief Description

Koobface.GX is a worm that spreads by copying itself, without infecting other files.

It uses stealth techniques to avoid being detected by the user:

It uses techniques included in its code to hide itself while it is active.

Koobface.GX uses the following propagation or distribution methods:

Exploiting vulnerabilities with the intervention of the user: exploiting vulnerabilities in file formats or applications. To exploit them successfully it needs the intervention of the user: opening files, viewing malicious web pages, reading emails, etc.

Instant messaging: it sends links pointing to a copy of itself to all users included in the infected user's contacts list.